Title: Sensitive data masking for the processes inside a container like a curl request · Issue #17183 · stackrox/stackrox · GitHub
Open Graph Title: Sensitive data masking for the processes inside a container like a curl request · Issue #17183 · stackrox/stackrox
X Title: Sensitive data masking for the processes inside a container like a curl request · Issue #17183 · stackrox/stackrox
Description: Hi, thank you for a great product! I have a small request: Currently, when StackRox logs the contents of processes inside a container like a curl requests (for example, in the UI, logs, or in external integrations such as Slack notificat...
Open Graph Description: Hi, thank you for a great product! I have a small request: Currently, when StackRox logs the contents of processes inside a container like a curl requests (for example, in the UI, logs, or in exter...
X Description: Hi, thank you for a great product! I have a small request: Currently, when StackRox logs the contents of processes inside a container like a curl requests (for example, in the UI, logs, or in exter...
Opengraph URL: https://github.com/stackrox/stackrox/issues/17183
X: @github
Domain: patch-diff.githubusercontent.com
{"@context":"https://schema.org","@type":"DiscussionForumPosting","headline":"Sensitive data masking for the processes inside a container like a curl request","articleBody":"Hi, thank you for a great product!\n\nI have a small request:\n\nCurrently, when StackRox logs the contents of processes inside a container like a curl requests (for example, in the UI, logs, or in external integrations such as Slack notifications), sensitive information such as tokens, authorization headers, API keys, or other secrets may be included in plain text. This poses a security risk by potentially leaking credentials to users with access to logs, UI, or integrations.\n\nTo make matters worse, StackRox's only one DeploymentExtension:Read permission controls both network flows and the display of processes and startup arguments, requiring this permission to be granted to anyone who needs network browsing access.\n\nFeature Request:\n\nPlease add a feature that enables automatic masking or removal of sensitive data when logging processes inside a container like a curl requests or sending request data to external integrations (such as Slack). \n\nDesired Behavior:\n\n- Sensitive data fields should be replaced with a placeholder (like [REDACTED]) before being logged or sent to the UI/integrations.\n- There should be a configuration option to disable or enable showing and loggin of processes launch options.\n- The masking/removal should be applied consistently across all logs, UI displays, and outgoing integrations (such as Slack notifications).\n\nExample:\n\nBefore:\ncurl -H \"Authorization: Bearer secret_token_123\" -H \"x-api-key: myapikey\" https://api.example.com/data\n\nAfter:\ncurl [REDACTED]\n\nThank you for considering this feature request! Please let me know if additional details or clarifications are needed.","author":{"url":"https://github.com/Danyboy","@type":"Person","name":"Danyboy"},"datePublished":"2025-10-08T09:10:27.000Z","interactionStatistic":{"@type":"InteractionCounter","interactionType":"https://schema.org/CommentAction","userInteractionCount":1},"url":"https://github.com/17183/stackrox/issues/17183"}
| route-pattern | /_view_fragments/issues/show/:user_id/:repository/:id/issue_layout(.:format) |
| route-controller | voltron_issues_fragments |
| route-action | issue_layout |
| fetch-nonce | v2:81a14041-7360-4573-dc5d-702f457f0ac2 |
| current-catalog-service-hash | 81bb79d38c15960b92d99bca9288a9108c7a47b18f2423d0f6438c5b7bcd2114 |
| request-id | CC40:3CA6BA:A95C0F:E84ADE:6980AF5B |
| html-safe-nonce | da6843bc9d27067f16d32e59582876c7de057fd868099a22c25e6a9501cc5fed |
| visitor-payload | eyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJDQzQwOjNDQTZCQTpBOTVDMEY6RTg0QURFOjY5ODBBRjVCIiwidmlzaXRvcl9pZCI6IjM5NDcxNzM2MDY0ODc3OTc1OTUiLCJyZWdpb25fZWRnZSI6ImlhZCIsInJlZ2lvbl9yZW5kZXIiOiJpYWQifQ== |
| visitor-hmac | 657d6896a1532b6835f85f52e416e697e0a66982f582dcd262736263b7dd31ce |
| hovercard-subject-tag | issue:3494576612 |
| github-keyboard-shortcuts | repository,issues,copilot |
| google-site-verification | Apib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I |
| octolytics-url | https://collector.github.com/github/collect |
| analytics-location | / |
| fb:app_id | 1401488693436528 |
| apple-itunes-app | app-id=1477376905, app-argument=https://github.com/_view_fragments/issues/show/stackrox/stackrox/17183/issue_layout |
| twitter:image | https://opengraph.githubassets.com/97e2eb926f347d8bb392e5c40978c46d0717e2c1470671de4a79e03cb8286e33/stackrox/stackrox/issues/17183 |
| twitter:card | summary_large_image |
| og:image | https://opengraph.githubassets.com/97e2eb926f347d8bb392e5c40978c46d0717e2c1470671de4a79e03cb8286e33/stackrox/stackrox/issues/17183 |
| og:image:alt | Hi, thank you for a great product! I have a small request: Currently, when StackRox logs the contents of processes inside a container like a curl requests (for example, in the UI, logs, or in exter... |
| og:image:width | 1200 |
| og:image:height | 600 |
| og:site_name | GitHub |
| og:type | object |
| og:author:username | Danyboy |
| hostname | github.com |
| expected-hostname | github.com |
| None | d5070894b88d5cf03785c677c23c659b0431dfc2e6df2f35e35f2e0de9ceb94a |
| turbo-cache-control | no-preview |
| go-import | github.com/stackrox/stackrox git https://github.com/stackrox/stackrox.git |
| octolytics-dimension-user_id | 40638982 |
| octolytics-dimension-user_login | stackrox |
| octolytics-dimension-repository_id | 434017296 |
| octolytics-dimension-repository_nwo | stackrox/stackrox |
| octolytics-dimension-repository_public | true |
| octolytics-dimension-repository_is_fork | false |
| octolytics-dimension-repository_network_root_id | 434017296 |
| octolytics-dimension-repository_network_root_nwo | stackrox/stackrox |
| turbo-body-classes | logged-out env-production page-responsive |
| disable-turbo | false |
| browser-stats-url | https://api.github.com/_private/browser/stats |
| browser-errors-url | https://api.github.com/_private/browser/errors |
| release | 821a5a2664fd1c2441fb3caded98e0f525bf913f |
| ui-target | full |
| theme-color | #1e2327 |
| color-scheme | light dark |
Links:
Viewport: width=device-width